Bug 1221616 (CVE-2015-3169)
Summary: | CVE-2015-3169 askbot: cross-site scripting flaw | ||||||
---|---|---|---|---|---|---|---|
Product: | [Other] Security Response | Reporter: | Martin Prpič <mprpic> | ||||
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> | ||||
Status: | CLOSED UPSTREAM | QA Contact: | |||||
Severity: | medium | Docs Contact: | |||||
Priority: | medium | ||||||
Version: | unspecified | CC: | echevemaster, kevin, me, metherid, mrunge, pj.pandit, zool | ||||
Target Milestone: | --- | Keywords: | Security | ||||
Target Release: | --- | ||||||
Hardware: | All | ||||||
OS: | Linux | ||||||
Whiteboard: | |||||||
Fixed In Version: | Doc Type: | Bug Fix | |||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2019-06-08 02:41:15 UTC | Type: | --- | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Bug Depends On: | 1221618, 1221619 | ||||||
Bug Blocks: | |||||||
Attachments: |
|
Description
Martin Prpič
2015-05-14 12:50:55 UTC
Created askbot tracking bugs for this issue: Affects: fedora-20 [bug 1221618] Affects: epel-6 [bug 1221619] Could you give me more information about the bug? I tested what you wrote but I couldn't trigger it. Acknowledgements: Red Hat would like to thank Harsha Vardhan Boppana (@hvboppana) for reporting this issue. Created attachment 1044309 [details]
0001-Fix-CVE-2015-3169-XSS-by-using-sort-argument-in-GET-.patch
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products. |